JS:Adware.Agent.VTZ

Solved
jeromece Posted messages 311 Status Membre -  
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   -
Hello,

I keep getting an alert message on Bitdefender regarding JS:Adware.Agent.VTZ

Message: The file C:\Users\adm\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0011b3 is infected with JS:Adware.Agent.VTZ and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.

I have tried
adwcleaner
malwarebytes
spyhunter

But they find nothing

I looked at the proposed solutions, but I can't detect any suspicious processes

I’m sharing the link to the ZHP Diag report

https://www.cjoint.com/c/IBysL0f4akB

Thank you for your help

Configuration: Windows / Chrome 72.0.3626.109

8 réponses

Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Hello,

Remove/uninstall all the software used, it's pointless.
It's a detection in the Google cache.
So nothing serious.

Clear it, see these links:
https://www.malekal.com/vider-supprimer-cache-internet-chrome-firefox-edge-opera-brave/
https://www.commentcamarche.net/faq/3037-vider-le-cache-du-navigateur-chrome-firefox-safari-et-ie

--
Please press any key to continue the disinfection...
1
jeromece Posted messages 311 Status Membre 2
 
Okay, thanks, I'm starting the cleaning and I'll see how it goes.
1
jeromece Posted messages 311 Status Membre 2
 
Hello
I cleared the cache yesterday
and nothing has changed
about twenty notifications today
Bitdefender blocks with this message as well:
Feature:
Online Threat Prevention

We blocked this dangerous page for your protection:
http://cardinaldata.net/1fa16f6ccbee745a0c.js
Threat name: JS:Adware.Agent.VTZ
Dangerous pages attempt to install software that can harm the device, gather personal information or operate without your consent.


and also

Feature:
Antivirus

The file C:\Users\adm\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00190e has been detected as infected. The threat has been successfully blocked, your device is safe.

0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Ok, let's go further,

Are you sure the alerts do not come from a site that you visit and that may have been hacked?

1)
Repair the affected web browsers:
(do not use zoek and perform a manual reset)

2) To check your computer for possible infections and get a general status of the system:

Follow the FRST tutorial by clicking on this blue link. ( take the time to read carefully - everything is well explained ).

Download and run the FRST scan,
Wait for the scan to finish, a message will indicate that the analysis is complete.

Three FRST reports will be generated:
  • FRST.txt
  • Shortcut.
  • Additionnal.txt


Send these 3 reports to the site https://pjjoint.malekal.com/ and in return, provide the 3 pjjoint links leading to the reports here in a new response so that we can review them.

(The blue links lead to step-by-step explanatory tutorials, click on them for more detailed instructions to follow).

--
Please press a key to continue the disinfection...
0
jeromece Posted messages 311 Status Membre 2
 
Thank you
here are the 3 reports, I have reset Google Chrome beforehand
no Firefox

addition
https://pjjoint.malekal.com/files.php?id=20190225_i8i7b13i15w10

frst
https://pjjoint.malekal.com/files.php?id=FRST_20190225_c6t11p13n14t11

shortcut
https://pjjoint.malekal.com/files.php?id=20190225_n9w10d5n6p6

I will let you know tomorrow if there are still any alert messages
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Not infected.
We'll see if resetting Chrome helps.

--
Please press a key to continue the disinfection...
0
jeromece Posted messages 311 Status Membre 2
 
No more alert message
the reset was successful

Thank you
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 711
 
Perfect, good evening =)

--
Please press a key to continue the disinfection...
0